Security Scan Report: www.bqzl36.vip

Redirected to:
https://www.lrnnyn.vip:7443/register65764?i_code=73104968
Site favicon
Submitted: Sep 19, 2026, 11:47:31 AMCompleted: Sep 19, 2026, 11:48:06 AMpubliccompleted

This website contacted 3 IPs in 3 countries across 3 domains to perform 33 HTTP transactions. The main domain is lrnnyn.vip and was registered 2 months ago.

Submitted URL: https://www.bqzl36.vip

Effective URL:

https://www.lrnnyn.vip:7443/register65764?i_code=73104968
Redirected

AI Security Verdict

High Risk

Confidence: 78%

8
Risk Score

Impersonates 开云体育 (Kaiyun Sports) and Real Madrid as an unlicensed gambling site on an unranked domain, with a credential-capturing registration form and a single-source Formbook malware report on the entry domain. Avoid.

Risk Factors (6)
Brand impersonation of Kaiyun Sports and Real Madrid football club branding on an unauthorized domain
Illegal/unauthorized gambling platform
Account registration form with password fields collecting user credentials
Single-source (unverified) Formbook malware threat-intelligence match on the entry domain
Cross-domain redirect chain from an unrelated entry domain to the final registration host
Unranked domain not present in Cisco Umbrella top 1M
Domain age information unavailable

Details

Page Title

部官方区域合作伙伴    开云体育官网-皇家马德里足球俱乐

Scan Type

public

Domain Name Analysis

Domain 'www.bqzl36.vip' uses the .vip top-level domain with subdomain 'www'. The registrable portion 'bqzl36' spans 6 characters with zero vowels and 4 consonants; bonus characters include two digits. Word splitting yields 3 words: bq, zl, 36. Expect two characters per word on average. No strong language cues emerged from the frequency lists.

Screenshot

Security scan screenshot of https://www.bqzl36.vip

Page Load Overview

15.12s
Total Load Time
929 KB
Total Size

Language Analysis

Primary Language

🇨🇳Chinese
Code: zh
Confidence:60%
Script:Han
Direction:ltr

Detection Details

Text Length:126 chars
Detector Agreement:50%

Website Classification

Primary Category

adult content28% confidence
Type: spa
Method: ml+structural

All Detected Categories

adult content
28%

Detected Features

No structural features detected

Domain & IP Information

RequestsIP AddressLocationAS Autonomous System
11172.65.242.166Cloudflare · WAFUnited States
AS13335Cloudflare, Inc.
11154.220.10.112Seychelles
AS135097LUOGELANG (FRANCE) LIMITED
1143.243.240.205Hong Kong
AS153494XRUI TECHNOLOGY LIMITED
333--

Detected Technologies3

Content Similarity HashesFor malware variant detection

TLSH (Trend Micro Locality Sensitive Hash)

Security-focused

Specialized for malware detection and similarity analysis

T1F8C23B334909B4730D363C9AE5E26A4E2C0CD21AD56346C4F2ADF6EAD6DEF095C0F494

ssdeep (Context Triggered Piecewise Hashing)

Context-aware

Detects similar content even with modifications

384:dEhxQCp8MZTMqtah6mpYZxMU76gGBtS6x9flMjURZsVuSbxfcRBx2OcRBq3hcROU:dEhxQCp8MZThmqdOTBtSk99MjFVuA+6

sdhash (Similarity Digest Hashing)

High-precision

High-precision similarity detection for forensic analysis

sdhash:3:26627:BOaBigAh0SI2WAgAIBhhWpKBo6UxFIUQBwkMDpHk0CGCgAAcIhpBoQgISEifBZBggPiIgWhkGAjMAxQhRALBTZAyAEk4YFYk

These hashes enable detection of similar websites and malware variants by comparing content similarity even when exact matches aren't found.

Image Hashes

Perceptual Hashes

Average Hash:ffffff1818180000
Perceptual Hash:cc8cb3069e969db1
Difference Hash:e0f0b2b2b232f0e0
Wavelet Hash:ffffff1818181800
Color Hash:#bf9540

Other Hashes

Crop Resistant:e0f0b2b2b232f0e0

Scan History

Scan history not available

Unable to load historical scan data